Medium severity5.3NVD Advisory· Published Oct 12, 2021· Updated Jun 17, 2026
CVE-2021-40497
CVE-2021-40497
Description
SAP BusinessObjects Analysis (edition for OLAP) - versions 420, 430, allows an attacker to exploit certain application endpoints to read sensitive data. These endpoints are normally exposed over the network and successful exploitation could lead to exposure of some system specific data like its version.
Affected products
4cpe:2.3:a:sap:businessobjects_analysis:420:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:sap:businessobjects_analysis:420:*:*:*:*:*:*:*
- cpe:2.3:a:sap:businessobjects_analysis:430:*:*:*:*:*:*:*
- (no CPE)range: 420, 430
- SAP SE/SAP BusinessObjects Analysis, (edition for OLAP)v5Range: < 420
Patches
Vulnerability mechanics
References
2- wiki.scn.sap.com/wiki/pages/viewpage.actionnvdVendor Advisory
- launchpad.support.sap.comnvdPermissions Required
News mentions
0No linked articles in our index yet.